Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

regsvr32.exe


  • Please log in to reply

#1
driech

driech

    New Member

  • Member
  • Pip
  • 3 posts
I’ve spent considerable time on this problem (virus) with no success. While trying to upgrade my Window 2K from SP3 to SP4, I noticed that C:\winnt\system32\regsvr32.exe, or more correctly, REGSVR32.exe had a byte count of 0, which has been causing considerable problems when trying to install some applications.

I went into safe mode, replaced the defective regsvr32.exe with a good copy, and then rebooted normally. The file was again replaced with a zero byte file immediately after the system had completed rebooting.

After checking different sources on the Internet, I thought it MIGHT be a Norton system application that I have installed on my system for virus and firewall protection. However, I found out that this is NOT the case since my son’s PC had the identical problem and I rebuilt his machine up from a formatted system disk, reinstalled Win 2K and the associated Norton applications. His regsvr32.exe file is now fine, so I know I have some type of virus.

I have tried several different types of virus scanners, Spyware Doctor, Avast, etc., but none of them can identify the problem.

Is there any way to track who/what made modifications to a file?

Can you help me?

Thanks….
  • 0

Advertisements


#2
darth_ash

darth_ash

    Member 1K

  • Member
  • PipPipPipPip
  • 1,382 posts
Download Filemon have it run on start-up; make sure you enable filters in it, filter by including only C:\winnt\system32\regsvr32.exe. You might find whats trying to access regsvr32.exe. Don't forget to remove Filemon from startup after you finish

If you suspect a malware infection; Please go to themalware forum and follow the instructions at the top....Especially the CLICK HERE .

That will give you several steps that will help you clean up 70 percent of all problems by yourself. If at the end of the process you are still having difficulty--and you may not be-- then post a hijackthis log in THAT forum.

If you are still having problems after getting a clean bill of health from the malware expert, please return to this thread.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP